
EC-CouncilCloud Security Essentials
Domain 2Objective 3
Identity Federation and Single Sign-On (SSO) CSE Practice Questions (Page 8)
Part of the Identity and Access Management in the Cloud domain, which makes up ~12% of our current practice bank.
44questions here
9free pages
6concepts
Questions 36–40
- 36
In a single sign-on (SSO) system, what does the service provider (SP) typically receive after the user authenticates at the identity provider (IdP)?
Select an answer first - 37
In a typical cloud SSO flow, what is the correct order of events after a user attempts to access a cloud application?
Select an answer first - 38
What is a key security consideration when validating tokens in a federated environment?
Select an answer first - 39
A company is implementing SSO using OIDC. The company's security policy requires that access tokens be validated on every API call. The API gateway currently validates the token's signature and expiry but does not check with the IdP. What is the best way to meet the policy requirement?
Select an answer first - 40
A user is accessing a cloud application through SSO. The application receives a SAML assertion and creates a local session. Later, the user's account is disabled in the identity provider. What happens to the user's existing session in the application?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.